
AWSCertified Cloud Practitioner
Domain 2Objective 3
Task Statement 2.3: Identify AWS Access Management Capabilities. CLF-C02 Practice Questions (Page 5)
Part of the Security and Compliance domain, which makes up ~24% of our current practice bank. AWS does not publish an official question count, but from its 90-minute exam (~35–60 total, ~8–14 in this domain), expect 2–4 from this objective — we provide 28 practice questions to prepare you well beyond it. (estimate)
28questions here
6free pages
8concepts
Questions 21–25
- 21
What is the primary purpose of creating an IAM user in AWS?
Select an answer first - 22
What is the purpose of a service control policy (SCP) in AWS Organizations?
Select an answer first - 23
A company is using AWS Organizations and wants to provide its employees with a single sign-on experience to access multiple AWS accounts and third-party SaaS applications. Which AWS service should the company use?
Select an answer first - 24
Which AWS Identity and Access Management (IAM) construct is used to grant the same set of permissions to multiple users at once?
Select an answer first - 25
A company's security policy requires that all IAM users must provide a second form of authentication when signing in to the AWS Management Console. The company wants to enforce this requirement centrally so that users cannot sign in without it. Which of the following is the MOST effective way to enforce this policy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “CLF-C02” is a trademark of its owner, used for identification only.